cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 3-07-2019
Ran by Léo (08-07-2019 17:21:38)
Running from C:\Users\Léo\Desktop
Windows 7 Ultimate Service Pack 1 (X64) (2015-02-16 16:41:33)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1149298868-2067588766-1365819076-500 - Administrator - Disabled)
Guest (S-1-5-21-1149298868-2067588766-1365819076-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1149298868-2067588766-1365819076-1004 - Limited - Enabled)
Léo (S-1-5-21-1149298868-2067588766-1365819076-1000 - Administrator - Enabled) => C:\Users\Léo

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.3.9120 - Adobe Systems Inc.)
Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated)
After Effect version CS6 (HKLM-x32\...\{F4D62001-19DF-4334-905F-1B33AC60CAF0}_is1) (Version: CS6 - )
Ample Guitar T II version 2.1.0 (HKLM-x32\...\{548F88E8-79D2-441F-B87B-E71754257651}_is1) (Version: 2.1.0 - Ample Sound Technology Co., Ltd.)
Antares Autotune VST RTAS TDM v5.08 (HKLM-x32\...\Antares Autotune VST RTAS TDM_is1) (Version: - Team AiR 2007)
Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.11 - Michael Tippach)
Band-in-a-Box 2006 (HKLM-x32\...\BB_is1) (Version: - PG Music Inc.)
BlueStacks App Player (HKLM-x32\...\BlueStacks) (Version: 4.1.21.2018 - BlueStack Systems, Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Cableguys ShaperBox 1.0.1 (HKLM\...\ShaperBox_is1) (Version: 1.0.1 - Cableguys)
Cableguys VolumeShaper 4.0 (HKLM\...\VolumeShaper_is1) (Version: 4.0 - Cableguys)
Camel Audio CamelCrusher (HKLM-x32\...\Camel Audio CamelCrusher) (Version: 1.01.0 - Camel Audio)
Camtasia Studio 8 (HKLM-x32\...\{56E884B5-B9B6-4432-B209-3A3EF41C7A01}) (Version: 8.0.3.1018 - TechSmith Corporation)
Contenu supplémentaire de Vita 2 (HKLM\...\{51924FC1-4D6C-4BCA-AF76-DC9E6D53AEE3}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden
CPUID HWMonitor 1.35 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.35 - CPUID, Inc.)
CrystalDiskInfo 6.5.2 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.5.2 - Crystal Dew World)
Cubase 5 (HKLM\...\{51AC53CA-6D26-459A-9BDF-53BAEB3E11A3}) (Version: 5.1.2 - Steinberg)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
East West EWQLSO Gold Edition (HKLM-x32\...\East West EWQLSO Gold Edition) (Version: - )
eLicenser Control (HKLM-x32\...\eLicenser Control) (Version: 6.6.6.2133 - Steinberg Media Technologies GmbH)
EZdrummer 2 32-bit (HKLM-x32\...\{7E36EB5B-0739-4DA7-BF26-E63DD2BECA76}) (Version: 2.0.0 - Toontrack)
EZdrummer 2 64-bit (HKLM\...\{B9217824-0EBE-49C7-98A0-A76CC46BBB7D}) (Version: 2.0.0 - Toontrack)
FabFilter Total Bundle (HKLM\...\Total Bundle_is1) (Version: 2017.03.23 - FabFilter)
FL Studio 11 (HKLM-x32\...\FL Studio 11) (Version: - Image-Line)
FL Studio 12.1.2 (HKLM\...\FL Studio 12.1.2_is1) (Version: - )
FL Studio 9 (HKLM-x32\...\FL Studio 9) (Version: - Image-Line)
FL Studio ASIO (HKLM\...\FL Studio ASIO) (Version: - Image-Line)
FlowStone FL 3.0 (HKLM-x32\...\FlowStone) (Version: - )
Flux Pure Analyzer (HKLM\...\Pure Analyzer_is1) (Version: 1.10.4 - Flux)
Galerie de photos (HKLM-x32\...\{439B34FF-F74E-4807-B5E2-4B758551DA6B}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 75.0.3770.100 - Google LLC)
Google Earth (HKLM-x32\...\{F6430171-B86B-4639-839E-374913E7911D}) (Version: 7.1.8.3036 - Google)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
Gramblr (HKLM\...\Gramblr) (Version: 2.9.194 - Gramblr Team)
Guitar Pro 4.0 (HKLM-x32\...\Guitar Pro 4.0) (Version: - )
Hardcore (HKLM-x32\...\Hardcore) (Version: - Image-Line)
IL Download Manager (HKLM-x32\...\IL Download Manager) (Version: - Image-Line)
IL Gross Beat (HKLM-x32\...\IL Gross Beat) (Version: - Image-Line)
IL Shared Libraries (HKLM-x32\...\IL Shared Libraries) (Version: - Image-Line)
Infected Mushroom Manipulator (HKLM\...\Polyverse Infected Mushroom Manipulator_is1) (Version: 1.0.3 - Polyverse & Team V.R)
Intel(R) C++ Redistributables on IA-32 (HKLM-x32\...\{EDD93990-EFCC-44E9-A7E5-BBE90FEC52FA}) (Version: 18.0.156 - Intel Corporation)
Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{AF8A5E6C-7485-47FB-9FE4-CF3B43FDB178}) (Version: 18.0.156 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3958 - Intel Corporation)
ISM BazzISM (HKLM\...\BazzISM_is1) (Version: 2.5.2 - ISM)
iZotope Nectar 2 Production Suite (HKLM-x32\...\iZotope Nectar 2 Production Suite_is1) (Version: 2.04 - iZotope, Inc.)
iZotope Ozone 6 Advanced (HKLM-x32\...\iZotope Ozone 6 Advanced_is1) (Version: 6.01 - iZotope, Inc.)
iZotope VocalSynth (HKLM-x32\...\VocalSynth 1.0) (Version: 1.0 - iZotope, Inc.)
Junk Mail filter update (HKLM-x32\...\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
keilwerth Audio Vengeance Avenger 1.2.2 (HKLM\...\Vengeance Avenger_is1) (Version: 1.2.2 - keilwerth Audio / Vengeance Sound)
MAGIX Contenu et Soundpools (HKLM-x32\...\MAGIX_GlobalContent) (Version: 1.0.0.0 - MAGIX Software GmbH)
MAGIX Music Maker 2013 Premium Soundpools (HKLM\...\{E9C22D9E-F51D-4CE5-959C-2144D8972787}) (Version: 1.0.0.0 - MAGIX AG) Hidden
MAGIX Music Maker 2013 Soundpools (HKLM\...\{BF4C9E0E-A720-46C6-9C23-1E77B17355FB}) (Version: 1.0.0.0 - MAGIX AG) Hidden
MAGIX Screenshare (HKLM-x32\...\{51B7A83D-ED64-4FBF-9FC5-769966BC9280}) (Version: 4.3.6.1987 - MAGIX AG)
MAGIX Speed burnR (MSI) (HKLM\...\{AB505D2E-B7C7-4D42-91E2-A130963CC963}) (Version: 7.0.1.27 - MAGIX AG) Hidden
MAGIX Speed burnR (MSI) (HKLM-x32\...\MAGIX_{AB505D2E-B7C7-4D42-91E2-A130963CC963}) (Version: 7.0.1.27 - MAGIX AG)
Malwarebytes version 3.8.3.2965 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.8.3.2965 - Malwarebytes)
M-Audio FastTrack Driver 6.0.2 (x64) (HKLM\...\{C874B99C-8480-4AFB-A646-4B1DCAB185B2}) (Version: 6.0.2 - M-Audio)
Melodyne 3.1 (HKLM-x32\...\{9D623E1A-30E1-4E55-BD80-5C1359DB120B}) (Version: 3.1.0200 - Celemony Software GmbH) Hidden
Melodyne 3.1 (HKLM-x32\...\{A1F143D1-1F0D-44FB-A44B-71D4367D16DE}) (Version: 3.1.0200 - Celemony Software GmbH)
Microsoft .NET Framework 4.7.2 (Français) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft .NET Framework 4.7.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft Combat Flight Simulator (HKLM-x32\...\Combat Flight Simulator 1.00) (Version: - )
Microsoft OneDrive (HKU\S-1-5-21-1149298868-2067588766-1365819076-1000\...\OneDriveSetup.exe) (Version: 17.0.4035.0328 - Microsoft Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.12.25810 (HKLM-x32\...\{e2ee15e2-a480-4bc5-bfb7-e9803d1d9823}) (Version: 14.12.25810.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.12.25810 (HKLM-x32\...\{56e11d69-7cc9-40a5-a4f9-8f6190c4d84d}) (Version: 14.12.25810.0 - Microsoft Corporation)
Movie Maker (HKLM-x32\...\{21764A96-6748-4B83-89E7-7A5063BF156C}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MusicLab RealStrat (32-bit) (HKLM-x32\...\{F16B6849-2CA2-468A-BCDA-380837095A13}) (Version: 3.1.0.7127 - MusicLab, Inc.) Hidden
MusicLab RealStrat (64-bit) (HKLM\...\{3AC252AE-6034-44CE-A682-C94687BD2A6A}) (Version: 3.1.0.7127 - MusicLab, Inc.) Hidden
MusicLab RealStrat (HKLM-x32\...\{87d50511-cb30-4e5d-99b4-763b91649a0b}) (Version: 3.1.0.7127 - MusicLab, Inc.)
MusicLab RealStrat Sound Bank (HKLM-x32\...\{AB14929E-8CC5-420F-8702-4B49C977EBE8}) (Version: 3.1.0.7127 - MusicLab, Inc.) Hidden
MusicLab Virtual Midi Driver (64-bit) (HKLM\...\{2B019162-86C7-4D14-AED0-2CB5110BA4FF}) (Version: 2.0.2.0 - MusicLab, Inc.)
Native Instruments Kinetic Metal (HKLM-x32\...\Native Instruments Kinetic Metal) (Version: 1.0.0.12 - Native Instruments)
Native Instruments Kontakt 5 (HKLM-x32\...\Native Instruments Kontakt 5) (Version: 5.3.1.37 - Native Instruments)
Native Instruments Massive (HKLM-x32\...\Native Instruments Massive) (Version: 1.5.1.637 - Native Instruments)
Native Instruments Scarbee Funk Guitarist (HKLM-x32\...\Native Instruments Scarbee Funk Guitarist) (Version: - Native Instruments)
Native Instruments Session Horns Pro (HKLM-x32\...\Native Instruments Session Horns Pro) (Version: 1.1.0.5 - Native Instruments)
Native Instruments Supercharger GT (HKLM-x32\...\Native Instruments Supercharger GT) (Version: 1.1.2.446 - Native Instruments)
Nicky Romero Kickstart 1.0.6 (HKLM\...\Kickstart_is1) (Version: 1.0.6 - Nicky Romero)
Noiiz Player version 1.1.2 (HKLM-x32\...\{EEEB9799-BD52-41A6-A3FB-9086A3732DF6}}_is1) (Version: 1.1.2 - Noiiz)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8.8 - Notepad++ Team)
Novation USB Audio Driver 2.7 (HKLM\...\Novation USB Audio Driver_is1) (Version: 2.7 - Novation DMS Ltd.)
Ozone Imager (HKLM-x32\...\Ozone Imager) (Version: 1.00 - iZotope, Inc.)
PACE License Support Win64 (HKLM\...\{72ad9d51-0903-4fe7-af5d-33b3185fa6e9}) (Version: 2.4.5.0812 - PACE Anti-Piracy, Inc.) Hidden
PACE License Support Win64 (HKLM-x32\...\InstallShield_{72ad9d51-0903-4fe7-af5d-33b3185fa6e9}) (Version: 2.4.5.0812 - PACE Anti-Piracy, Inc.)
Paint XP version 1.1 (HKLM-x32\...\{2367FAB6-055A-4923-835F-F57F7BBBA363}_is1) (Version: 1.1 - MSPAINTXP.COM)
PoiZone (HKLM-x32\...\PoiZone) (Version: - Image-Line)
PSPaudioware PSP VintageWarmer2 (HKLM\...\PSP VintageWarmer2_is1) (Version: 2.7.2 - PSPaudioware)
Qualcomm Atheros Fast Reconnect (HKLM-x32\...\{0CA2063D-D43F-41F2-A8AC-A3C4A4C722D2}) (Version: 1.0 - QualComm Atheros)
QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)
Reaktor 6 NO INSTALL (HKLM\...\{151D1547-2FCD-41A6-B6DC-01A4B122FA6A}_is1) (Version: 6.1.1.35 - Native Instruments)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.370.70 - Realtek Semiconductor Corp.)
reFX Nexus VSTi RTAS v2.2.0 (HKLM-x32\...\reFX Nexus_is1) (Version: - )
Revo Uninstaller 2.1.0 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.1.0 - VS Revo Group, Ltd.)
RGC.Audio.z3ta+_Access.Virus.VSTi.v1.2.Retail-Elite. (HKLM-x32\...\RGC.Audio.z3ta+_Access.Virus.VSTi.v1.2.Retail-Elite.) (Version: - )
Roland VS D-50 (HKLM\...\D-50_is1) (Version: 1.0.1 - Roland VS)
Roland VS Roland VS Instruments Bundle (HKLM\...\Roland VS Instruments Bundle_is1) (Version: 5.7 - Roland VS)
Roland VS SOUND Canvas VA (HKLM\...\SOUND Canvas VA_is1) (Version: 1.1.1 - Roland VS)
Sawer (HKLM-x32\...\Sawer) (Version: - Image-Line)
SonicProjects OP-X PRO-II (HKLM\...\OP-X PRO-II_is1) (Version: 1.2.6 - SonicProjects & Team V.R)
Sonnoxplugins Oxford Elite Collection Native v1.0 (HKLM-x32\...\Sonnoxplugins Oxford Elite Collection Native_is1) (Version: - )
Steinberg Drum Loop Expansion 01 (HKLM-x32\...\{490BF87E-1F75-4453-BF55-9F540543A3CA}) (Version: 2.0.0.0 - Steinberg Media Technologies GmbH)
Steinberg Groove Agent ONE Content (HKLM-x32\...\{BD86F1AC-B594-46E4-85DC-1258AC9E2232}) (Version: 1.0.0.003 - Steinberg Media Technologies GmbH)
Steinberg Groove Agent ONE Vintage Beatboxes (HKLM-x32\...\{DBF4BC99-53F1-4C97-84C3-7557D103E182}) (Version: 1.0.0.000 - Steinberg Media Technologies GmbH)
Steinberg HALion Sonic SE 64bit (HKLM\...\{B99C316B-C135-43B5-8E77-2BC5E241F964}) (Version: 1.6.3 - Steinberg Media Technologies GmbH)
Steinberg HALion Sonic SE Content for Cubase LE AI Elements (HKLM-x32\...\{CF45002F-2205-4116-BB51-2D015F436CAC}) (Version: 1.6.3 - Steinberg Media Technologies GmbH)
Steinberg Midi Loop Library (HKLM-x32\...\{89DE2651-6DD9-4C15-AC94-8348362D456C}) (Version: 1.0.0 - Steinberg Media Technologies GmbH)
Steinberg REVerence Content 01 (HKLM-x32\...\{532B917B-8235-4FA5-BE36-643A8BB053A5}) (Version: 2.0.1.000 - Steinberg Media Technologies GmbH)
Steinberg Upload Manager (HKLM-x32\...\{88BBBD8F-4C19-4809-B84B-7A8F8238B48D}) (Version: 1.0.1 - Steinberg Media Technologies GmbH)
Steinberg Virtual Guitarist (HKLM-x32\...\Virtual Guitarist) (Version: - )
Steinberg VST Amp Rack Content 01 (HKLM-x32\...\{8CBA7E47-48DA-47DC-8E98-6984BA830295}) (Version: 1.0.1 - Steinberg Media Technologies GmbH)
Sugar Bytes Cyclop 1.2.0 (HKLM\...\Cyclop_is1) (Version: 1.2.0 - Sugar Bytes)
Sylenth1 v2.21 (HKLM\...\Sylenth1_is1) (Version: - )
Sylenth1 v2.21 (HKLM-x32\...\Sylenth1_is1) (Version: - )
TEAM R2R Roland Cloud Emulator (HKLM\...\Roland Cloud Emulator_is1) (Version: 1.0.1 - TEAM R2R)
TeamViewer 13 (HKLM-x32\...\TeamViewer) (Version: 13.1.3629 - TeamViewer)
Text-To-Speech-Runtime (HKLM-x32\...\{7B3F0113-E63C-4D6D-AF19-111A3165CCA2}) (Version: 1.0.0.0 - Magix Development GmbH)
The Glue (HKLM\...\The Glue_is1) (Version: 1.3.12 - Team V.R)
Toxic Biohazard (HKLM-x32\...\Toxic Biohazard) (Version: - Image-Line)
UltraISO Premium V9.35 (HKLM-x32\...\UltraISO_is1) (Version: - )
ValhallaFreqEcho version 1.0.5 (HKLM-x32\...\{86164718-6457-42DE-8DB6-EA05F7045F2C}_is1) (Version: 1.0.5 - Valhalla DSP, LLC)
ValhallaPlate version 1.5.0dot25 (HKLM-x32\...\{0FD9F8AC-2CD0-454C-823A-1E076903E795}_is1) (Version: 1.5.0dot25 - Valhalla DSP, LLC)
ValhallaRoom version 1.5.1 (HKLM-x32\...\{A17C42DB-BF2C-4AEC-8B57-C2C3EF052902}_is1) (Version: 1.5.1 - Valhalla DSP, LLC)
ValhallaShimmer version 1.0.3dot4 (HKLM-x32\...\{6955BA75-52B6-4C6F-BCC4-1014920D587C}_is1) (Version: 1.0.3dot4 - Valhalla DSP, LLC)
ValhallaSpaceModulator version 1.0.7 (HKLM-x32\...\{5A8791CD-6E9A-4270-8A0B-D6AC9967877E}_is1) (Version: 1.0.7 - Valhalla DSP, LLC)
ValhallaUberMod version 1.0.2 (HKLM-x32\...\{E9CEC6F2-2F70-413D-B12D-5B552B6928C1}_is1) (Version: 1.0.2 - Valhalla DSP, LLC)
ValhallaVintageVerb version 1.7.1 (HKLM-x32\...\{F63B0240-2765-450B-81CD-D305D9F53C3D}_is1) (Version: 1.7.1 - Valhalla DSP, LLC)
Vegas Pro 11.0 (HKLM-x32\...\{B60CD35E-0296-11E2-945A-F04DA23A5C58}) (Version: 11.0.700 - Sony)
Vita 2 (HKLM\...\{B74C0F31-3688-4FCE-BEE8-0C3A47968027}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden
Vita Bass Machine (HKLM\...\{59D2C0EA-47BE-4CC4-A1D2-E3A36150059C}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden
Vita Rock Drums (HKLM\...\{6EA96503-3738-4A4A-B743-0479CCBE371C}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden
Vita String Ensemble (HKLM\...\{486D7332-4381-4982-8ABC-6A7B109FA34E}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden
Vita World Percussion (HKLM\...\{FCCE8235-1017-461B-AE69-903B595DADA3}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden
Voxengo PHA-979 (HKLM\...\Voxengo PHA-979_is1) (Version: 2.5 - Voxengo)
Voxengo SPAN Plus (HKLM\...\Voxengo SPAN Plus_is1) (Version: 1.3 - Voxengo)
Waves Complete (HKLM\...\Complete_is1) (Version: 2018.05.03 - Waves)
Windows 7 Boot Skin - windows7 (HKLM-x32\...\Windows 7 Boot Skin) (Version: - Coder for Life - Skin Author: windows)
Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WinRAR 5.50 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1149298868-2067588766-1365819076-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation - pGFX -> Intel Corporation)
CustomCLSID: HKU\S-1-5-21-1149298868-2067588766-1365819076-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Léo\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1149298868-2067588766-1365819076-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Léo\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1149298868-2067588766-1365819076-1000_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Léo\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1149298868-2067588766-1365819076-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Léo\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1149298868-2067588766-1365819076-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Léo\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\FileSyncApi64.dll (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2015-04-15] () [File not signed]
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [UltraISO] -> {AD392E40-428C-459F-961E-9B147782D099} => C:\Program Files (x86)\UltraISO\isoshl64.dll [2009-04-02] (SHENZHEN YIBO DIGITAL SYSTEMS DEVELOPMENT CO. LTD. -> EZB Systems, Inc.)
ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
ContextMenuHandlers4: [UltraISO] -> {AD392E40-428C-459F-961E-9B147782D099} => C:\Program Files (x86)\UltraISO\isoshl64.dll [2009-04-02] (SHENZHEN YIBO DIGITAL SYSTEMS DEVELOPMENT CO. LTD. -> EZB Systems, Inc.)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2014-10-01] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
ContextMenuHandlers6: [UltraISO] -> {AD392E40-428C-459F-961E-9B147782D099} => C:\Program Files (x86)\UltraISO\isoshl64.dll [2009-04-02] (SHENZHEN YIBO DIGITAL SYSTEMS DEVELOPMENT CO. LTD. -> EZB Systems, Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]

Shortcut: C:\Users\Léo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line\FL Studio 9\Additional\SynthMaker website.lnk -> hxxp://www.synthmaker.co.uk

==================== Loaded Modules (Whitelisted) ==============

2015-02-16 18:47 - 2011-08-10 16:09 - 000057344 _____ (Atheros) [File not signed] C:\Program Files (x86)\Qualcomm Atheros Fast Reconnect\Ath_WlanAgent.exe

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:2CB9631F [134]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-05-27 18:01 - 2019-07-08 12:50 - 000000922 _____ C:\Windows\system32\drivers\etc\hosts

127.0.0.1 www.r2rdownload.com
127.0.0.1 www.elephantafiles.com
127.0.0.1 www.r2rdownload.net

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;%INTEL_DEV_REDIST%redist\intel64_win\compiler;%INTEL_DEV_REDIST%redist\ia32_win\compiler;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\QuickTime\QTSystem\;C:\Program Files (x86)\Windows Live\Shared
HKU\S-1-5-21-1149298868-2067588766-1365819076-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Léo\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 45.86.180.227 - 185.162.93.213
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: iSkysoft Helper Compact.exe => C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{5F8ECF16-52CA-42DA-A988-E1556280ED16}C:\program files\steinberg\cubase le ai elements 7\cubase le ai elements 7.exe] => (Block) C:\program files\steinberg\cubase le ai elements 7\cubase le ai elements 7.exe No File
FirewallRules: [UDP Query User{16A5579C-33A3-4CB9-BDE4-F9090E1B0E3C}C:\program files\steinberg\cubase le ai elements 7\cubase le ai elements 7.exe] => (Block) C:\program files\steinberg\cubase le ai elements 7\cubase le ai elements 7.exe No File
FirewallRules: [TCP Query User{0C874E17-533C-4184-8769-3CFC0CFB87CD}C:\program files\steinberg\cubase le ai elements 7\components\vstbridgeapp.exe] => (Block) C:\program files\steinberg\cubase le ai elements 7\components\vstbridgeapp.exe No File
FirewallRules: [UDP Query User{343AFB19-FF75-486C-B28C-2E111EDED6DD}C:\program files\steinberg\cubase le ai elements 7\components\vstbridgeapp.exe] => (Block) C:\program files\steinberg\cubase le ai elements 7\components\vstbridgeapp.exe No File
FirewallRules: [{B6300EF5-2984-4DE2-A0D3-E490AB324B5E}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{A5A3EF38-17EA-4BEF-A6B1-0314EBBBEDA2}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{42BE235A-DDF4-49D2-A341-6AADFCDC5C34}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{AA78E8CF-EF20-4347-ABC5-EE9FD4492656}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{47477FBB-6AE3-4BB5-8F08-DFDD1218C6AA}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{C7A6935B-904A-4B48-AFF4-D82B184A8546}C:\program files (x86)\novation\automap\automapserver.exe] => (Allow) C:\program files (x86)\novation\automap\automapserver.exe No File
FirewallRules: [UDP Query User{E96BC52F-EDF5-4C47-80DC-B4A8D3E9D662}C:\program files (x86)\novation\automap\automapserver.exe] => (Allow) C:\program files (x86)\novation\automap\automapserver.exe No File
FirewallRules: [{7704E81B-A22E-4F68-BB12-DC9051287009}] => (Allow) C:\Program Files (x86)\BlackBerry\BlackBerry Blend\desktopinvokeproxy.exe No File
FirewallRules: [{ACAF4F2A-CE4B-4592-B04F-FBFDE5C5B4F5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{32EF97C2-678A-461B-A661-DD10F4C04E30}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{F0620F14-E4B5-4A1A-A96E-ED261AAC44D7}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{9527B2C1-F926-47D2-8F6D-84F29813285A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [TCP Query User{9888ECB1-18A0-4EF5-9E57-A02630CDB5BA}C:\users\léo\desktop\nouveau dossier (2)\jeux\midtown madness\midtown.exe] => (Allow) C:\users\léo\desktop\nouveau dossier (2)\jeux\midtown madness\midtown.exe (Angel Studios) [File not signed]
FirewallRules: [UDP Query User{EEB50E3F-D0C2-47CF-93DE-E03419B6D686}C:\users\léo\desktop\nouveau dossier (2)\jeux\midtown madness\midtown.exe] => (Allow) C:\users\léo\desktop\nouveau dossier (2)\jeux\midtown madness\midtown.exe (Angel Studios) [File not signed]
FirewallRules: [{C4C47D9A-8026-4249-B9B4-48D564A3B545}] => (Allow) C:\Program Files (x86)\BlueStacks\HD-Player.exe (BlueStack Systems, Inc.) [File not signed]
FirewallRules: [TCP Query User{D4D7FB9D-8FD2-47A7-A78B-CCE1041448DC}C:\program files (x86)\image-line\fl studio 11\system\tools\bridge\64bit\ilbridge.exe] => (Block) C:\program files (x86)\image-line\fl studio 11\system\tools\bridge\64bit\ilbridge.exe (Image-Line) [File not signed]
FirewallRules: [UDP Query User{4054CACF-D679-4E87-A740-C130D642A100}C:\program files (x86)\image-line\fl studio 11\system\tools\bridge\64bit\ilbridge.exe] => (Block) C:\program files (x86)\image-line\fl studio 11\system\tools\bridge\64bit\ilbridge.exe (Image-Line) [File not signed]
FirewallRules: [{2212E48F-C407-4196-BDE2-D3460FC1CD7E}] => (Allow) C:\Users\Léo\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{56B756C6-EE4E-4108-939E-4445FC8503D2}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C57487FB-3F94-430E-A631-55BBD7AE63B9}] => (Allow) LPort=2869
FirewallRules: [{E067FF4E-8D81-415A-B0B4-792389F25019}] => (Allow) LPort=1900
FirewallRules: [{8C83BAEC-A9CD-4F76-ACD7-B5FBD853AF89}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{5F70F203-3AC9-4F4D-AAA1-6E83205A6DCC}C:\program files (x86)\image-line\fl studio 11\system\tools\bridge\64bit\ilbridge.exe] => (Block) C:\program files (x86)\image-line\fl studio 11\system\tools\bridge\64bit\ilbridge.exe (Image-Line) [File not signed]
FirewallRules: [UDP Query User{540CC0E7-211B-44E5-996F-30FF19745F34}C:\program files (x86)\image-line\fl studio 11\system\tools\bridge\64bit\ilbridge.exe] => (Block) C:\program files (x86)\image-line\fl studio 11\system\tools\bridge\64bit\ilbridge.exe (Image-Line) [File not signed]
FirewallRules: [{FDB3E64E-9A97-4DBC-91DB-27FBAD0A0115}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

07-07-2019 06:54:25 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106
07-07-2019 07:01:18 Device Driver Package Install: M-Audio Sound, video and game controllers
08-07-2019 11:24:11 Revo Uninstaller's restore point - SpyHunter 5

==================== Faulty Device Manager Devices =============

Name: Contrôleur de bus USB
Description: Contrôleur de bus USB
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Carte graphique VGA standard
Description: Carte graphique VGA standard
Class Guid: {4d36e968-e325-11ce-bfc1-08002be10318}
Manufacturer: (Types d’écrans standard)
Service: vga
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: Contrôleur Ethernet
Description: Contrôleur Ethernet
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft Teredo Tunneling Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: Contrôleur de bus SM
Description: Contrôleur de bus SM
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (07/08/2019 03:05:08 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Le filtre d’événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n’a pas pu être réactivé dans l’espace de noms « //./root/CIMV2 » à cause de l’erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.

Error: (07/08/2019 02:28:00 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Le filtre d’événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n’a pas pu être réactivé dans l’espace de noms « //./root/CIMV2 » à cause de l’erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.

Error: (07/08/2019 01:23:18 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Le filtre d’événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n’a pas pu être réactivé dans l’espace de noms « //./root/CIMV2 » à cause de l’erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.

Error: (07/08/2019 12:47:21 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante TiWorker.exe, version : 4.1.0.0, horodatage : 0x593a0b3e
Nom du module défaillant : kernel32.dll, version : 6.1.7601.18869, horodatage : 0x556366fc
Code d’exception : 0xc0000005
Décalage d’erreur : 0x00000000000aa4ab
ID du processus défaillant : 0x8a4
Heure de début de l’application défaillante : 0x01d5357a82583554
Chemin d’accès de l’application défaillante : C:\Windows\SysWOW64\sl-SI\S-1-4-90\TiWorker.exe
Chemin d’accès du module défaillant: C:\Windows\system32\kernel32.dll
ID de rapport : c32884b1-a16d-11e9-81cb-1867b05f0d37

Error: (07/08/2019 12:33:32 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante TiWorker.exe, version : 4.1.0.0, horodatage : 0x593a0b3e
Nom du module défaillant : kernel32.dll, version : 6.1.7601.18869, horodatage : 0x556366fc
Code d’exception : 0xc0000005
Décalage d’erreur : 0x00000000000aa4ab
ID du processus défaillant : 0x1150
Heure de début de l’application défaillante : 0x01d5357858f0034e
Chemin d’accès de l’application défaillante : C:\Windows\SysWOW64\sl-SI\S-1-4-90\TiWorker.exe
Chemin d’accès du module défaillant: C:\Windows\system32\kernel32.dll
ID de rapport : d4929dc6-a16b-11e9-81cb-1867b05f0d37

Error: (07/08/2019 12:22:21 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante TiWorker.exe, version : 4.1.0.0, horodatage : 0x593a0b3e
Nom du module défaillant : kernel32.dll, version : 6.1.7601.18869, horodatage : 0x556366fc
Code d’exception : 0xc0000005
Décalage d’erreur : 0x00000000000aa4ab
ID du processus défaillant : 0x15d4
Heure de début de l’application défaillante : 0x01d5357663365568
Chemin d’accès de l’application défaillante : C:\Windows\SysWOW64\sl-SI\S-1-4-90\TiWorker.exe
Chemin d’accès du module défaillant: C:\Windows\system32\kernel32.dll
ID de rapport : 44b1474f-a16a-11e9-81cb-1867b05f0d37

Error: (07/08/2019 11:50:57 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Le filtre d’événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n’a pas pu être réactivé dans l’espace de noms « //./root/CIMV2 » à cause de l’erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.

Error: (07/08/2019 11:33:18 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Le filtre d’événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n’a pas pu être réactivé dans l’espace de noms « //./root/CIMV2 » à cause de l’erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.


System errors:
=============
Error: (07/08/2019 11:48:18 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service PACE License Services s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 2000 millisecondes : Restart the service.

Error: (07/08/2019 11:48:18 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Windows Presentation Foundation Font Cache 3.0.0.0 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 0 millisecondes : Restart the service.

Error: (07/08/2019 11:48:18 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Windows Live ID Sign-in Assistant s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Restart the service.

Error: (07/08/2019 11:48:18 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Windows Media Player Network Sharing Service s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 30000 millisecondes : Restart the service.

Error: (07/08/2019 11:48:18 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Le service Intel(R) HD Graphics Control Panel Service s’est terminé de façon inattendue pour la 1ème fois.

Error: (07/08/2019 11:48:18 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Le service Service Bonjour s’est terminé de façon inattendue pour la 1ème fois.

Error: (07/07/2019 10:22:28 PM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: Le service Power s’est arrêté avec l’erreur service particulière L’opération a réussi.
.

Error: (07/07/2019 10:21:12 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: L’arrêt système précédant à 22:19:58 le ‎07/‎07/‎2019 n’était pas prévu.


Windows Defender:
===================================
Date: 2015-12-05 19:40:11.876
Description:
L’analyse Windows Defender a détecté un logiciel espion ou un autre logiciel potentiellement indésirable.
Pour plus d’informations, consultez les informations suivantes :
http://go.microsoft.com/fwlink/?linkid=37020&name=Backdoor:Win32/IRCbot.FH&threatid=163029
Nom : Backdoor:Win32/IRCbot.FH
ID : 163029
Gravité : Severe
Catégorie : Backdoor
Chemin d’accès trouvé : file:C:\Users\Léo\AppData\Local\Temp\jermzlol.exe;process:pid:3664
Type de détection : Concret
Source de détection : Protection en temps réel
État : Inconnu
Utilisateur : \
Nom du processus :

CodeIntegrity:
===================================

Date: 2015-04-30 23:06:08.383
Description:
Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume2\Program Files\BubbleSound\BubbleSound.dll car le jeu de hachages d’images par page n’a pas été trouvé sur le système.

Date: 2015-04-30 23:06:08.334
Description:
Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume2\Program Files\BubbleSound\BubbleSound.dll car le jeu de hachages d’images par page n’a pas été trouvé sur le système.

==================== Memory info ===========================

BIOS: American Megatrends Inc. P09ABE 07/04/2013
Motherboard: SAMSUNG ELECTRONICS CO., LTD. NP350E7C-S0BFR
Processor: Intel(R) Core(TM) i3-3110M CPU @ 2.40GHz
Percentage of memory in use: 80%
Total physical RAM: 6035.5 MB
Available physical RAM: 1203.75 MB
Total Virtual: 12069.2 MB
Available Virtual: 6850.44 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:931.41 GB) (Free:260.43 GB) NTFS
Drive f: () (Removable) (Total:3.76 GB) (Free:2.42 GB) FAT32

\\?\Volume{a7396c43-b5f9-11e4-9883-806e6f6e6963}\ (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: D8BBF672)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Size: 3.8 GB) (Disk ID: 04DD5721)
Partition 1: (Active) - (Size=3.8 GB) - (Type=0C)

==================== End of Addition.txt ============================

Publicité


Signaler le contenu de ce document

Publicité